STIGQter STIGQter: STIG Summary: Akamai KSD Service Impact Level 2 NDM Security Technical Implementation Guide Version: 1 Release: 1 Benchmark Date: 12 Sep 2017:

The Akamai Luna Portal must automatically audit account removal actions.

DISA Rule

SV-91163r1_rule

Vulnerability Number

V-76467

Group Title

SRG-APP-000029-NDM-000211

Rule Version

AKSD-DM-000011

Severity

CAT II

CCI(s)

Weight

10

Fix Recommendation

Enable account removal alerting:

1. Log in to the Luna Portal as an administrator.
2. Select Configure >> Alerts.
3. Search/filter for "Luna Control Center Event".
4. Click the "Settings" button and click on "Properties" tab.
5. Select "Manage - Manage Users".

Check Contents

Verify that the portal is sending Luna Event notifications:

1. Log in to the Luna Portal as an administrator.
2. Select Configure >> Alerts.
3. Search/filter for "Luna Control Center Event".
4. Click the "Settings" button and click on "Properties" tab.
5. Verify that the following setting is selected: "Manage - Manage Users".

If the Luna Control Center event notifications are not enabled, this is a finding.

Vulnerability Number

V-76467

Documentable

False

Rule Version

AKSD-DM-000011

Severity Override Guidance

Verify that the portal is sending Luna Event notifications:

1. Log in to the Luna Portal as an administrator.
2. Select Configure >> Alerts.
3. Search/filter for "Luna Control Center Event".
4. Click the "Settings" button and click on "Properties" tab.
5. Verify that the following setting is selected: "Manage - Manage Users".

If the Luna Control Center event notifications are not enabled, this is a finding.

Check Content Reference

M

Target Key

3167

Comments